Ci-dessous, les différences entre deux révisions de la page.
Les deux révisions précédentes Révision précédente Prochaine révision | Révision précédente | ||
doc:veille:chiffrement [2008/02/02 17:31] lehobey |
doc:veille:chiffrement [2015/10/11 19:45] fdl Déplacée vers veille:chiffrement. |
||
---|---|---|---|
Ligne 3: | Ligne 3: | ||
===== Thèmes ===== | ===== Thèmes ===== | ||
+ | * [[GnuTLS]] | ||
* [[GPG]] et [[doc:ma clef GPG]] | * [[GPG]] et [[doc:ma clef GPG]] | ||
* [[Droit de chiffrer]] | * [[Droit de chiffrer]] | ||
+ | * [[openssl]] | ||
+ | * [[sha-1]] | ||
* [[ssh]] | * [[ssh]] | ||
* [[sshfs]] | * [[sshfs]] | ||
Ligne 14: | Ligne 17: | ||
===== De partitions ===== | ===== De partitions ===== | ||
+ | * http://madduck.net/docs/cryptdisk/ | ||
* À la Ubuntu : https://wiki.ubuntu.com/EncryptedFilesystemHowto | * À la Ubuntu : https://wiki.ubuntu.com/EncryptedFilesystemHowto | ||
+ | * http://feeding.cloud.geek.nz/2008/05/encrypting-your-home-directory-using.html | ||
* http://feeds.feedburner.com/~r/UbuntuTutorials/~3/145370028/ | * http://feeds.feedburner.com/~r/UbuntuTutorials/~3/145370028/ | ||
* http://www.cs278.org/blog/ubuntu-configuration/feisty-debootstrap-encrypted-install/ | * http://www.cs278.org/blog/ubuntu-configuration/feisty-debootstrap-encrypted-install/ | ||
Ligne 27: | Ligne 32: | ||
* http://blog.incase.de/index.php/2007/02/20/dual-boot-and-full-encryption-part-2/ | * http://blog.incase.de/index.php/2007/02/20/dual-boot-and-full-encryption-part-2/ | ||
* http://www.student.tue.nl/Q/j.f.berndsen/debian/ | * http://www.student.tue.nl/Q/j.f.berndsen/debian/ | ||
+ | |||
+ | * Réflexions : http://feeding.cloud.geek.nz/2008/04/two-tier-encryption-strategy-archiving.html | ||
+ | * Attaques : http://www.hermann-uwe.de/blog/lest-we-remember--cold-boot-attacks-on-encryption-keys | ||
+ | |||
==== LUKS ==== | ==== LUKS ==== | ||
+ | * http://mixinet.net/~sto/blog/sysadmin/20090226_macbook_cryptsetup_take_3/ | ||
+ | |||
* http://www.hermann-uwe.de/blog/howto-disk-encryption-with-dm-crypt-luks-and-debian | * http://www.hermann-uwe.de/blog/howto-disk-encryption-with-dm-crypt-luks-and-debian | ||
* LUKS : http://blog.dlgeek.net/?p=84 | * LUKS : http://blog.dlgeek.net/?p=84 | ||
Ligne 34: | Ligne 45: | ||
* https://help.ubuntu.com/community/EncryptedFilesystem | * https://help.ubuntu.com/community/EncryptedFilesystem | ||
* http://johnleach.co.uk/words/archives/2006/12/06/245/ | * http://johnleach.co.uk/words/archives/2006/12/06/245/ | ||
+ | * retailler : http://www.enricozini.org/2008/tips/resize-luks.html | ||
+ | * Et ssh : http://ubuntuforums.org/showthread.php?t=829768 | ||
+ | * Amovibles : http://www.fabianrodriguez.com/blog/2009/01/21/easy-removable-storage-encryption-that-works-with-hardy-and-intrepid/ | ||
==== Comparaison ==== | ==== Comparaison ==== | ||
* http://www.corsac.net/?rub=blog&post=1327 | * http://www.corsac.net/?rub=blog&post=1327 | ||
+ | |||
Ligne 46: | Ligne 61: | ||
=== clef === | === clef === | ||
* http://www.matthew.ath.cx/articles/cryptkey | * http://www.matthew.ath.cx/articles/cryptkey | ||
+ | * Système sur clef : http://www.debian-administration.org/articles/179 | ||
==== Liens (pour orthosie) ==== | ==== Liens (pour orthosie) ==== | ||
Ligne 55: | Ligne 71: | ||
* http://www.saout.de/tikiwiki/tiki-index.php | * http://www.saout.de/tikiwiki/tiki-index.php | ||
* http://www.saout.de/tikiwiki/tiki-index.php?page=HOWTO | * http://www.saout.de/tikiwiki/tiki-index.php?page=HOWTO | ||
+ | |||
+ | ==== Partition d'échange ===== | ||
+ | * http://feeding.cloud.geek.nz/2008/03/encrypted-swap-partition-on.html | ||
===== eCryptfs ===== | ===== eCryptfs ===== | ||
* http://lwn.net/Articles/156921/ | * http://lwn.net/Articles/156921/ | ||
+ | * Répertoires privés : http://dustinkirkland.wordpress.com/2008/10/03/whats-in-my-encrypted-private-directory/ | ||
===== Encfs ===== | ===== Encfs ===== | ||
* http://hollowtube.mine.nu/wiki/index.php/PAM/PamEncfs | * http://hollowtube.mine.nu/wiki/index.php/PAM/PamEncfs | ||
* Mode graphique : http://www.aigarius.com/blog/2008/02/02/using-fuse-encfs-in-a-graphical-way/ | * Mode graphique : http://www.aigarius.com/blog/2008/02/02/using-fuse-encfs-in-a-graphical-way/ | ||
+ | |||
+ | |||
===== Clefs sur clef ====== | ===== Clefs sur clef ====== | ||
+ | * http://www.linux.codehelp.co.uk/serendipity/index.php?/archives/131-Adapting-autofs-for-GPG-keys-to-an-SD-card.html | ||
* http://www.mattb.net.nz/blog/2006/04/13/loading-gpg-ssh-keys-from-a-usb-key-round-2/ | * http://www.mattb.net.nz/blog/2006/04/13/loading-gpg-ssh-keys-from-a-usb-key-round-2/ | ||
* http://www.mattb.net.nz/debian/misc/manage-keys | * http://www.mattb.net.nz/debian/misc/manage-keys | ||
* https://help.ubuntu.com/community/GPGKeyOnUSBDrive | * https://help.ubuntu.com/community/GPGKeyOnUSBDrive | ||
+ | * http://www.einval.com/~steve/docs/gpg-autofs.html | ||
+ | * http://artisan.karma-lab.net/node/1164 | ||
+ | * http://www.matthew.ath.cx/articles/cryptkey | ||
===== Courbes elliptiques ======= | ===== Courbes elliptiques ======= | ||
Ligne 75: | Ligne 101: | ||
===== Bibliothèques ===== | ===== Bibliothèques ===== | ||
* http://directory.fsf.org/libgcrypt.html | * http://directory.fsf.org/libgcrypt.html | ||
- | |||
===== Mauvaises pratiques ===== | ===== Mauvaises pratiques ===== | ||
* http://www.advogato.org/person/vorlon/diary.html?start=16 | * http://www.advogato.org/person/vorlon/diary.html?start=16 | ||
* WEP : http://linuxfr.org/2006/08/16/21198.html | * WEP : http://linuxfr.org/2006/08/16/21198.html | ||
+ | |||
+ | ==== TLS 1.0 est pourri ==== | ||
+ | * http://www.bortzmeyer.org/beast-tls.html | ||
===== Recherche en crypto ===== | ===== Recherche en crypto ===== |